Sceawere
Vulnerability Detail
CVE-2026-14525UPDATED Verified Sceawere Triage Sources: NVD / CISA KEV
IBM WebSphere Liberty Authentication Bypass
Vulnerability Metadata
- Severity
- Critical
- Score / CVSS
- 9.4
- Creation Date
- 3h ago
- Vendor
- IBM
- Product
- WebSphere Application Server - Liberty
- Attack Type
- CWE-306 Missing Authentication for Critical Function
- Vector String
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L
- Attack Complexity
- LOW
Narrative and Response
Description
IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 IBM WebSphere Application Server Liberty is vulnerable to an authentication bypass when the rtcomm-1.0 or rtcommGateway-1.0 feature is enabled.
Executive Summary
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.
Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.
Technical Details
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.
Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.
Mitigations
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.
Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.
References
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.
Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.
Additional Metadata
{
"score": "9.4",
"pubDate": "2026-08-13T20:17:14.250Z",
"pubdate": "2026-08-13T20:17:14.250Z",
"executiveSummary": "An authentication bypass vulnerability exists within IBM WebSphere Application Server Liberty affecting versions 17.0.0.3 through 26.0.0.8. The vulnerability specifically impacts environments where the rtcomm-1.0 or rtcommGateway-1.0 feature is enabled.\nThe flaw allows unauthorized entities to bypass security controls and gain unauthorized access to protected resources and functionalities. This authentication failure poses significant risk to confidentiality and integrity by potentially exposing sensitive operational data or allowing unauthorized interactions through the affected real-time communications features.\nSuccessful exploitation requires the targeted system to have the specific vulnerable features enabled. The attack capability relies on network-based interaction targeting the exposed rtcomm endpoints without requiring valid credentials or prior authentication. Organizations utilizing the affected versions of IBM WebSphere Application Server Liberty face direct exposure unless appropriate remediation steps are implemented to disable or patch the vulnerable components.",
"technicalDetails": "The vulnerability resides in the authentication and session handling mechanisms associated with the rtcomm-1.0 and rtcommGateway-1.0 features within IBM WebSphere Application Server Liberty versions 17.0.0.3 through 26.0.0.8.\nThe root cause stems from improper validation of authentication credentials and security context establishment within the vulnerable component when processing incoming communication requests. Consequently, the application fails to properly enforce access control policies, allowing unauthenticated connections to bypass established security perimeters.\nExploitation occurs over the network where an attacker crafts specialized requests targeting the endpoints managed by the rtcomm-1.0 or rtcommGateway-1.0 features. Because the affected component inadequately verifies the caller's identity and session state, the application processes the request as if valid authentication has been provided.\nThe attack flow proceeds as follows: First, the adversary identifies an IBM WebSphere Application Server Liberty instance running the vulnerable rtcomm-1.0 or rtcommGateway-1.0 features exposed to the network. Second, the attacker transmits maliciously constructed requests directly to the service endpoints. Third, the application bypasses standard authentication checks due to the flaw in the feature's security logic. Finally, the attacker achieves unauthorized access to the underlying functionalities and services exposed by the real-time communications module.\nThis vulnerability does not require any prior authentication or special user privileges, elevating the risk profile for exposed instances. Post-exploitation impact includes unauthorized interaction with real-time communication services and potential exposure of sensitive data processed within the context of the affected features."
}